Security News > 2025 > February > XE Hacker Group Exploits VeraCore Zero-Day to Deploy Persistent Web Shells
![XE Hacker Group Exploits VeraCore Zero-Day to Deploy Persistent Web Shells](/static/build/img/news/xe-hacker-group-exploits-veracore-zero-day-to-deploy-persistent-web-shells-medium.jpg)
2025-02-10 05:14
Threat actors have been observed exploiting multiple security flaws in various software products, including Progress Telerik UI for ASP.NET AJAX and Advantive VeraCore, to drop reverse shells and web shells, and maintain persistent remote access to compromised systems. The zero-day exploitation of security flaws in VeraCore has been attributed to a threat actor known as XE Group, a cybercrime
News URL
https://thehackernews.com/2025/02/xe-hacker-group-exploits-veracore-zero.html
Related news
- Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet (source)
- Hackers exploit 16 zero-days on first day of Pwn2Own Automotive 2025 (source)
- Hackers exploit DoS flaw to disable Palo Alto Networks firewalls (source)
- Hackers exploit Four-Faith router flaw to open reverse shells (source)
- New Mirai botnet targets industrial routers with zero-day exploits (source)
- Hackers exploit KerioControl firewall flaw to steal admin CSRF tokens (source)
- Zero-day exploits plague Ivanti Connect Secure appliances for second year running (source)
- Nominet probes network intrusion linked to Ivanti zero-day exploit (source)
- Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto Miners (source)
- Hackers exploit critical Aviatrix Controller RCE flaw in attacks (source)